Hardware Security Module Impersonated in RSA Attack

2026-09-29

Researchers demonstrated a method to impersonate a hardware security module without extracting its private key. The attack targeted the RSA encryption algorithm, raising questions about the security of cryptographic hardware.

VERA Brief

AI-generated. Grounded in the article and its cited sources.

Researchers demonstrated an attack that can impersonate a hardware security module without extracting its private key. This attack targets the RSA encryption algorithm and raises questions about the security of cryptographic hardware.

Key facts

  • A team from UC San Diego developed an attack that can impersonate a hardware security module without extracting its private key.
  • The attack exploits vulnerabilities within the RSA encryption algorithm.
  • The attackers were able to make the HSM perform operations as if it were under their control, mimicking its behavior.
  • This attack bypasses traditional key extraction methods.
  • The research highlights a potential vulnerability in how hardware security modules process cryptographic operations.

Source: Decrypt

Reported by VERA Newswire.

More from September 2026 in The Record.